Re: forwarding local ports

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Also try using -to-destination instead of just -to

On 3/16/07, Maximilian Wilhelm <max@xxxxxxxxxxx> wrote:
Am Friday, den 16. March hub Pascal Hambourg folgendes in die Tasten:

Hi!

> >I want forward local ports to remote server, for example:
> >for `telnet localhost 80` must answer webserver from remote IP

> The problem, which  has already been discussed in this list, is in
> kernels 2.6.11 and above. In Changelog-2.6.11 you can read :
[...]

> For this to work you must use a local address outside 127.0.0.0/8.

Or consider using something different than netfilter for this task,
e.g. the rinetd daemon (which works only for tcp, but that should fit
your need in this case.)

>From the debian package description:
 rinetd redirects TCP connections from one IP address and port to
 another, with basic IP-based access control.

Ciao
Max
--
|           |                 Follow the white penguin.
|  |\/|  |  |-----------------------------------------------------------.
|  |  |/\|  |  Rechnerbetrieb Mathematik  |   Meine Baustellen:  TSM    |
|           |  Universitaet Paderborn     |   Hostmaster, Linux, LDAP   |




--
On 5/17/6, a spammer known as PharmaMaster (PM) attacked Blue Security (BS).

Using a program called Blue Frog, BS created a distributed network of
over ½ mil users who would automatically send opt out requests to
spammers' clients. This was so effective that PM declared that BS
"found the right solution to stop spam, and I can't let this
continue." PM then DDoSd BS, endangered the net by hacking a major
router on the net's backbone to block BS' webpage and finally attacked
typepad, where BS had just surrendered 30 min earlier. This attack
caused about 2000 servers to go down including typepad and
livejournal.While BS gave up because they felt this would "prevent a
full-scale cyber-war that we just don't have the authority to start"
The community disagreed and started a Blue Frog clone called okopipi
which will prevents DDOS attacks by using decentralization.

With your help we can fight back against PM and his spam mafia. Please
join at okopipi.org and help take back our internet.



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux